Preparing your organization for the next big threat is no easy task, but there are tools that can help. Credit: NTT By Ron Newman Picture this: A CISO is speaking before their company’s board of directors and one board member asks a series of difficult questions. “What did we get for the $15 million we spent on cybersecurity last year? How can we measure our return on investment? How do we know our security defenses are actually providing us the security we expect?” For many years, it’s been difficult for CISOs to supply metrics. While many have been able to tell board members how many attacks their security teams and technologies mitigated each year, it’s often hard to give additional context by explaining exactly how effective their security measures were, and what they did to get them to that stage of effectiveness. SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe Enter breach and attack simulation In recent years, smart companies have had a more aggressive method to continuously test security controls via Breach and Attack Simulation (BAS). These security controls validation platforms provide an automated and continuous simulation of a variety of cyberattacks, including insider threats and lateral movements by attackers, giving companies constant feedback about the effectiveness of their security measures benchmarked against the MITRE ATT&CK framework. The controls validation platforms use machine learning and other automated tools to continuously probe a company’s IT environment for weaknesses. As a result, CISOs are continuously armed with the current information they need to support the business case for cybersecurity resources when addressing the rest of the C-Suite and board of directors. In some cases, that may mean asking for a cybersecurity budget increase to address deficiencies the security controls validation platform has identified. In other cases, it may mean validating the existing cybersecurity budget as a good return on investment. BAS is viewed as a useful tool by leading technology companies, such as Splunk. Splunk’s VP, Product Management, Security Jane Wong recently stated, “In lock step with our partner community, Splunk integrates with attack simulation tools and leverages best in class capabilities for important customer outcomes. With Breach and Attack Simulation, the Splunk ecosystem gets actionable meta-data to enable customers to not only validate the efficacy of their controls, but to ensure automated response is in place for any attacks that are simulated.” Don’t replace, but add on It’s worth noting here that Breach and Attack Simulation isn’t intended to replace other cybersecurity measures and controls. It’s another important part of a holistic cybersecurity operations model and, used in conjunction with real-time threat detection and response (containment and isolation), can help companies move toward a stronger security posture. Some companies may be tempted to use controls validation platforms to replace periodic penetration testing or red team attacks – human-led evaluations of a company’s cybersecurity posture. Though there may be some overlap between the two approaches, there’s value in using both. For example, penetration testing can be done randomly every few months, whereas a controls validation platform operates continuously. Penetration testing or red team attacks can bring a human element into attack simulations, and the use of a security controls validation platform can help focus a red team attack on areas that a company believes may need additional scrutiny. In return, red teams may be able to point out methodologies that can be used to expand the controls validation platform. Is your organization ready for the next big threat? Find out how cyber-resilient your business is via this cybersecurity maturity assessment. Related content brandpost The Many Advantages of a Cloud-First Approach A cloud-first strategy allows for both modernization and innovation, which in turn improves the end-user experience and reduces cost. By NTT Mar 29, 2022 5 mins Cloud Management brandpost Private 5G Will Transform Healthcare Private 5G can offer an integrated, controllable, organization-wide approach to networking. This allows healthcare organizations to evolve their network quickly and securelyu2014without losing existing investment in technology or assetsu2014to delive By NTT Mar 17, 2022 6 mins 5G brandpost Mastering Relationships Leads to Cloud Success The biggest obstacle for executives is not comprehending and leveraging various cloud infrastructures, but truly understanding their users and customers, and embracing differences for people across diverse geographies. By NTT Mar 02, 2022 6 mins Cloud Management brandpost Navigating the New Cybersecurity Paradigm As businesses consider their post-pandemic hybrid workplace strategies, they need to re-evaluate security from the ground up. By Biana Truman Feb 17, 2022 9 mins Cyberattacks Podcasts Videos Resources Events SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe